5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in Campcodes School Fees Payment Management System 1.0. The impacted element is an unknown function of the file /ajax.php?action=save_payment. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-13269
Source
VulDB
Published
Nov 17, 2025 at 07:32
Affected Product
Vendor
Campcodes
Product
School Fees Payment Management System
Version
1.0
Affected Versions
Campcodes School Fees Payment Management System 1.0